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number of services increase, with different versions and types of certificates with the 
clients and the pem\iiiatioiis and combinations of fields the CA would have to take 
care. 

Combined Certificates also suffer from the disadvantage of disclosing the entire 
information of tlie user to the server, even if it is not required. For example, if a site 
only implements Secure Email, the user with a combined certificate will still send him 
all the information including the SET Details (Credit information) which is a security 
risk. 

1 0 The object and summary of the invention: 

The object of tliis invention is to obviate the above drawbacks and provide a solution that 
minimises security risks. 

To achieve the said objective, tliis invention provides in a method for providing secure 
15 authentication using digital certificates, an improvement to enable the selective transfer of 

authentication data comprising: 

presentation of basic authentication data certified by an accepted certifying 
authority, at the commencement of a secure tiansactjon.5 

transfer of additional individual authentication data units against specific 
20 requests, as and when required, 

thereby eliminating the risks associated with providing any authentication data that is 
not required for a particular transaction. 

The authenticity of said additional individual authentication data is established by using the 
25 public key provided in said basic authentication data. 

The authenticity of said additional individual authentication data is established by signature of 
said accepted certifying authority. 

30 The said additional individual authentication data is provided without the need for 
establishing a separate session. 
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